CVE-2019-6320

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
09/01/2020
Last modified:
22/01/2020

Description

Certain HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN1912BR or higher) have a Cross-Site Request Forgery (CSRF) vulnerability that could lead to a denial of service (DOS) or device misconfiguration.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:hp:deskjet_3630_f5s43a_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_f5s43a:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_f5s57a_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_f5s57a:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_k4t93a_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_k4t93a:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_k4t99c_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_k4t99c:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_k4u00b_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_k4u00b:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_k4u03b_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_k4u03b:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_v3f21a_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)
cpe:2.3:h:hp:deskjet_3630_v3f21a:-:*:*:*:*:*:*:*
cpe:2.3:o:hp:deskjet_3630_v3f22a_firmware:*:*:*:*:*:*:*:* swp1fn1912br (excluding)


References to Advisories, Solutions, and Tools